spot_img

Date:

Share:

Commentary: Strengthening digital defences ahead of World Password Day

With World Password Day approaching on 7 May, ManageEngine South Africa is highlighting the importance of stronger password practises as cyber risks continue to rise for local businesses.

According to David C. Howell, Regional Sales Director at ManageEngine South Africa, many organisations are under mounting pressure to move beyond outdated password habits as cybercriminals continue to exploit weak or reused credentials. “Password security remains one of the simplest yet most frequently overlooked elements of cybersecurity. In South Africa, where businesses are rapidly accelerating digital transformation and employees often work across multiple devices and networks, the risks linked to poor password hygiene are becoming more pronounced,” said Howell.

Local data supports this concern. A TransUnion report shows that the account login stage has the highest rate of suspected digital fraud in the consumer life cycle in South Africa, driven by attempts at account takeover using stolen credentials, intercepted one-time passwords, and social engineering tactics. Often, attackers do not need sophisticated tools, instead exploiting compromised login details and human behaviour to gain access to accounts.

Howell added that this challenge is not unique to the local market, with global research reinforcing how persistent the problem remains. The Verizon 2025 Data Breach Investigations Report found that credential abuse remains the most common initial access vector in breaches, involved in over 22% of all confirmed non-error, non-misuse incidents.

“This demonstrates that even with advances in security tools, compromised credentials are still one of the easiest ways for attackers to gain access,” Howell explained. “We are seeing a clear shift towards passwordless authentication and stronger identity and access management frameworks, but adoption is still uneven, particularly among SMEs. The priority should be simple, practical steps: stronger passwords, multi-factor authentication, and better control over who has access to what.”

As organisations continue to expand their digital footprint, strengthening identity and access controls is a fundamental requirement for protecting systems, customer data, and user trust in an evolving threat landscape.

spot_img
spot_img

━ More like this

Prevention alone won’t suffice for South African businesses; cyber resilience is the real defence

South Africa is no longer a bystander in the global cybercrime landscape but a primary target. A major ransomware attack earlier this year, in which a...

The accelerated 2029 quantum computing deadline turns current encryption into a looming crisis

The cybersecurity industry has long treated Q-Day – the point at which quantum computing shatters current encryption standards – as a distant, theoretical problem....

Adaptive Deepfake Detection Revolutionises Digital Fraud Prevention

Sumsub launches its upgraded deepfake detection solution with instant online self-learning updates, setting a new standard in catching sophisticated fraud online Sumsub, a leading full-cycle verification...

Phishing in the age of AI – why the human firewall matters more than ever

Cybersecurity has long been a game of cat and mouse, with attackers innovating just as quickly as defenders can adapt. But in recent years,...

Cyber governance is central to effective enterprise risk management

Across many organisations, cyber governance is still treated as a parallel discipline to enterprise risk management rather than a core component of it. This separation...
spot_img